Hacker News new | ask | show | jobs
by pstoll 578 days ago
It’s a question of risk.

Full disk encryption targets a different threat model - disk encryption protects against someone grabbing your computer.

Writing into an encrypted blob on disk adds a layer of protection against bad actors exfiltrating data by running code on the laptop.

Overall I really am amazed that this sort of thing is now possible and appreciate a privacy-aware / local compute and storage version of it!